Novell.GroupWise.HTTP.Interfaces.Arbitrary.File.Retrieval

description-logoDescription

This indicates an attack attempt against a Directory Traversal vulnerability in the HTTP interface of Novell GroupWise Post Office Agent, Message Transfer Agent and Internet Agent.
The vulnerability is caused by an design error when the vulnerability software handles a crafted HTTP request. A remote attacker can exploit this to gain unauthorized access to sensitive information.

affected-products-logoAffected Products

Novell GroupWise Internet Agent 8.0.2 and prior
Novell GroupWise Message Transfer Agent 8.0.2 and prior
Novell GroupWise Post Office Agent 8.0.2 and prior

Impact logoImpact

Information Disclosure: Remote attackers can gain sensitive information from vulnerable systems.

recomended-action-logoRecommended Actions

Apply the most recent upgrade or patch from the vendor.
http://download.novell.com/Download?buildid=O5hTjIiMdMo~

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)